Gasolineras de España Security & Risk Analysis

wordpress.org/plugins/gasolineras-de-espana

Widget that allows you to display gas stations in Spain and their prices on your website

10 active installs v1.1.11 PHP 5.3+ WP 3.3.1+ Updated Jan 8, 2026
dieselgasolinagasolineragasolineraswidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Gasolineras de España Safe to Use in 2026?

Generally Safe

Score 100/100

Gasolineras de España has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "gasolineras-de-espana" v1.1.11 plugin exhibits a generally positive security posture based on the provided static analysis. The absence of known CVEs and a clean vulnerability history is a significant strength, suggesting good development practices and a lack of previously identified exploitable flaws. The plugin also avoids common risky behaviors such as external HTTP requests, file operations, and dangerous function usage. SQL queries are exclusively handled using prepared statements, which is excellent for preventing SQL injection vulnerabilities.

However, there are notable areas of concern. The plugin has a limited attack surface, with only one shortcode as an entry point, and importantly, none of these entry points appear to have authentication or permission checks. This is a significant weakness, as any user, even an unauthenticated one, could potentially interact with the shortcode and trigger its execution. Furthermore, a substantial portion of the plugin's output (55%) is not properly escaped. This leaves it vulnerable to Cross-Site Scripting (XSS) attacks, where malicious code could be injected and executed within the user's browser.

In conclusion, while the plugin demonstrates good security hygiene in areas like SQL handling and avoiding dangerous code patterns, the lack of authorization checks on its sole entry point and the high rate of unescaped output present critical security risks. These issues outweigh the positive aspects and require immediate attention to secure the plugin against potential attacks.

Key Concerns

  • Unprotected entry points (shortcode)
  • Significant amount of unescaped output
  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Gasolineras de España Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Gasolineras de España Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
105
86 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

45% escaped191 total outputs
Attack Surface

Gasolineras de España Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[gasolineras] gasolineras-de-espana.php:537
WordPress Hooks 4
actioninitgasolineras-de-espana.php:22
actionwidgets_initgasolineras-de-espana.php:410
actionadmin_enqueue_scriptsgasolineras-de-espana.php:421
actioninitgasolineras-de-espana.php:540
Maintenance & Trust

Gasolineras de España Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 8, 2026
PHP min version5.3
Downloads3K

Community Trust

Rating100/100
Number of ratings2
Active installs10
Developer Profile

Gasolineras de España Developer Profile

hullcode

2 plugins · 1K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
55 days
View full developer profile
Detection Fingerprints

How We Detect Gasolineras de España

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gasolineras-de-espana/gasolineras-de-espana.css/wp-content/plugins/gasolineras-de-espana/public/js/gasolineras-de-espana.js/wp-content/plugins/gasolineras-de-espana/public/css/gasolineras-de-espana.css/wp-content/plugins/gasolineras-de-espana/public/js/gasolineras-de-espana.min.js/wp-content/plugins/gasolineras-de-espana/public/css/gasolineras-de-espana.min.css
Version Parameters
gasolineras-de-espana/gasolineras-de-espana.css?ver=gasolineras-de-espana/public/js/gasolineras-de-espana.js?ver=gasolineras-de-espana/public/css/gasolineras-de-espana.css?ver=gasolineras-de-espana/public/js/gasolineras-de-espana.min.js?ver=gasolineras-de-espana/public/css/gasolineras-de-espana.min.css?ver=

HTML / DOM Fingerprints

CSS Classes
GDEW_widgetGDEW-formGDEW-adminGDEW-cityGDEW-autoComplete
Data Attributes
data-addressdata-latitudedata-longitudedata-init
JS Globals
GDEW_default_valuesGDEW_public
FAQ

Frequently Asked Questions about Gasolineras de España